Page 3 of 48 results (0.003 seconds)

CVSS: 9.8EPSS: 3%CPEs: 34EXPL: 0

05 May 2005 — Double free vulnerability in the ICEP dissector in Ethereal before 0.10.11 may allow remote attackers to execute arbitrary code. Ethereal is vulnerable to numerous vulnerabilities potentially resulting in the execution of arbitrary code or abnormal termination. Versions less than 0.10.11 are affected. • http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000963 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVSS: 9.8EPSS: 3%CPEs: 34EXPL: 0

05 May 2005 — Multiple format string vulnerabilities in the (1) DHCP and (2) ANSI A dissectors in Ethereal before 0.10.11 may allow remote attackers to execute arbitrary code. Ethereal is vulnerable to numerous vulnerabilities potentially resulting in the execution of arbitrary code or abnormal termination. Versions less than 0.10.11 are affected. • http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000963 •

CVSS: 7.5EPSS: 1%CPEs: 34EXPL: 0

05 May 2005 — Unknown vulnerability in the DICOM dissector in Ethereal before 0.10.11 allows remote attackers to cause a denial of service (large memory allocation) via unknown vectors. Ethereal is vulnerable to numerous vulnerabilities potentially resulting in the execution of arbitrary code or abnormal termination. Versions less than 0.10.11 are affected. • http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000963 •

CVSS: 7.5EPSS: 1%CPEs: 35EXPL: 0

05 May 2005 — Unknown vulnerability in the NDPS dissector in Ethereal before 0.10.11 allows remote attackers to cause a denial of service (memory exhaustion) via unknown vectors. Ethereal is vulnerable to numerous vulnerabilities potentially resulting in the execution of arbitrary code or abnormal termination. Versions less than 0.10.11 are affected. • http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000963 •

CVSS: 7.5EPSS: 1%CPEs: 34EXPL: 1

05 May 2005 — Multiple unknown vulnerabilities in the (1) WSP, (2) Q.931, (3) H.245, (4) KINK, (5) MGCP, (6) RPC, (7) SMBMailslot, and (8) SMB NETLOGON dissectors in Ethereal before 0.10.11 allow remote attackers to cause a denial of service (crash) via unknown vectors that lead to a null dereference. Ethereal is vulnerable to numerous vulnerabilities potentially resulting in the execution of arbitrary code or abnormal termination. Versions less than 0.10.11 are affected. • http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000963 •

CVSS: 7.5EPSS: 0%CPEs: 34EXPL: 1

26 Apr 2005 — Ethereal 0.10.10 and earlier allows remote attackers to cause a denial of service (infinite loop) via a crafted RSVP packet of length 4. • http://www.securityfocus.com/archive/1/396930 •

CVSS: 7.5EPSS: 0%CPEs: 1EXPL: 0

18 Mar 2005 — Unknown vulnerability in the sFlow dissector in Ethereal 0.9.14 through 0.10.9 allows remote attackers to cause a denial of service (application crash). • http://www.ethereal.com/appnotes/enpa-sa-00018.html •

CVSS: 9.8EPSS: 17%CPEs: 1EXPL: 1

13 Mar 2005 — The IAPP dissector (packet-iapp.c) for Ethereal 0.9.1 to 0.10.9 does not properly use certain routines for formatting strings, which could leave it vulnerable to buffer overflows, as demonstrated using modified length values that are not properly handled by the dissect_pdus and pduval_to_str functions. • https://www.exploit-db.com/exploits/874 • CWE-189: Numeric Errors •

CVSS: 9.8EPSS: 2%CPEs: 38EXPL: 0

22 Jan 2005 — Buffer overflow in the X11 dissector in Ethereal 0.8.10 through 0.10.8 allows remote attackers to execute arbitrary code via a crafted packet. • http://secunia.com/advisories/13946 •

CVSS: 7.5EPSS: 0%CPEs: 29EXPL: 0

31 Dec 2004 — Unknown vulnerability in Ethereal 0.8.13 to 0.10.2 allows attackers to cause a denial of service (segmentation fault) via a malformed color filter file. • http://secunia.com/advisories/11185 •